# IIQ SCIM API Token Generation

**URL:** <https://developer.sailpoint.com/discuss/t/iiq-scim-api-token-generation/22598>\
**Category:** IIQ Discussion and Questions\
**Tags:** identityiq, apis\
**Created:** [December 13, 2023, 1:47pm UTC](https://developer.sailpoint.com/discuss/t/iiq-scim-api-token-generation/22598 "2023-12-13T13:47:23Z")\
**Posts on this page:** 4\
**Page:** 1

<div class="post-metadata">

**Author:** ![arijitdas](https://avatars.discourse-cdn.com/v4/letter/a/22d042/32.png) [@arijitdas](https://developer.sailpoint.com/discuss/u/arijitdas)\
**Post date:** [December 13, 2023, 1:47pm UTC](https://developer.sailpoint.com/discuss/t/iiq-scim-api-token-generation/22598/1 "2023-12-13T13:47:23Z")

</div>

### Which IIQ version are you inquiring about?

Version 8.3

### Share all details related to your problem, including any error messages you may have received.

Hi All,

I have create an identity in IIQ local, and provided SCIM Executor and Web Service Executor as Capabilities. After which i have configured the API Authentication and generated Client Id and Client Secret. After which when i go to postman and try the get a token i get below error. The url used is [http://localhost:8080/iiq8.3/scim/v2/oauth2/token](http://localhost:8080/iiq8.3/scim/v2/oauth2/token) and in body we have grant\_type = client\_credentials

{  
“schemas”: [  
“urn:ietf:params:scim:api:messages:2.0:Error”  
],  
“detail”: “User does not have access.”,  
“status”: “401”  
}

---

<div class="post-metadata">

**Author:** ![Jarin\_James](https://sea1.discourse-cdn.com/sailpoint/discuss/user_avatar/developer.sailpoint.com/jarin_james/32/3372_2.png) [@Jarin\_James](https://developer.sailpoint.com/discuss/u/Jarin_James)\
**Post date:** [December 14, 2023, 5:56am UTC](https://developer.sailpoint.com/discuss/t/iiq-scim-api-token-generation/22598/2 "2023-12-14T05:56:26Z")

</div>

Hi @arijitdas ,

The token url is in below format.

```auto
http://localhost:8080/identityiq/oauth2/token

```

In your case, it should be something like this, if `iiq8.3` is the folder name.

```auto
http://localhost:8080/iiq8.3/oauth2/token

```

---

<div class="post-metadata">

**Author:** ![Jarin\_James](https://sea1.discourse-cdn.com/sailpoint/discuss/user_avatar/developer.sailpoint.com/jarin_james/32/3372_2.png) [@Jarin\_James](https://developer.sailpoint.com/discuss/u/Jarin_James)\
**Post date:** [December 14, 2023, 6:01am UTC](https://developer.sailpoint.com/discuss/t/iiq-scim-api-token-generation/22598/3 "2023-12-14T06:01:19Z")

</div>

You can refer this for more information on OAuth authentication in IIQ.  
[OAuth 2.0 (client credentials) as a token-based protocol for API authentication - Compass (sailpoint.com)](https://community.sailpoint.com/t5/IdentityIQ-Wiki/OAuth-2-0-client-credentials-as-a-token-based-protocol-for-API/ta-p/77630)

---

<div class="post-metadata">

**Author:** ![system](https://global.discourse-cdn.com/sailpoint/original/2X/f/f2136700ed5e3703e0b85e02f6be799dacca7735.png) [@system](https://developer.sailpoint.com/discuss/u/system)\
**Post date:** [February 12, 2024, 6:02am UTC](https://developer.sailpoint.com/discuss/t/iiq-scim-api-token-generation/22598/4 "2024-02-12T06:02:06Z")

</div>

This topic was automatically closed 60 days after the last reply. New replies are no longer allowed.
